Information Security Specialist - Red Team Operator

TD

Toronto

On-site

CAD 97,000 - 137,000

Full time

3 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

TD is seeking an Information Security Specialist - Red Team Operator to join its offensive security program in Toronto. The role focuses on end-to-end red team engagements, emulating threat actors to validate controls and provide actionable insights to detection and response teams.

The ideal candidate brings hands-on security expertise, strong tradecraft, and the ability to operate safely in a highly governed enterprise environment.

Qualifications

  • University degree
  • 7+ years of experience in offensive security, red teaming, penetration testing, or equivalent hands-on security roles
  • Strong knowledge of Windows Active Directory environments, identity abuse, and enterprise authentication flows
  • Proven experience with common red team tooling (e.g., C2 frameworks, phishing platforms, custom payloads)
  • Solid understanding of network protocols, operating systems, and endpoint security controls
  • Ability to safely execute adversarial activities in regulated environments with strict scope and approval processes
  • Strong written and verbal communication skills, including report writing and technical walkthroughs
  • Demonstrated ability to work independently while collaborating effectively with cross-functional teams

Responsibilities

  • Plan and execute full-scope red team engagements, including reconnaissance, initial access, lateral movement, privilege escalation, command-and-control, and objective completion
  • Emulate real-world threat actors using established TTPs (e.g., MITRE ATT&CK)
  • Conduct phishing and social engineering campaigns within defined legal and ethical constraints
  • Develop and maintain custom tooling, payloads, and infrastructure to support operations
  • Collaborate closely with Blue Team, Purple Team, Threat Intelligence, and Incident Response partners
  • Produce clear, technically accurate engagement reports and executive-ready summaries
  • Contribute to detection engineering by identifying gaps in controls, telemetry, and response processes
  • Support continuous improvement of red team methodologies, playbooks, and governance processes
  • Mentor junior operators and contribute to team knowledge sharing

Skills

Offensive security
Red teaming
Penetration testing
Threat emulation

Education

University degree

Tools

C2 frameworks
Phishing platforms
Custom payloads
PowerShell
Python
C#

Job description

Work Location

Toronto, Ontario, Canada

Hours

37.5

Line Of Business

Technology Solutions

Pay Details

$96,900 - $136,800 CAD
This role is eligible for a discretionary variable compensation award that considers business and individual performance.
TD is committed to providing fair and equitable compensation opportunities to all colleagues. Growth opportunities and skill development are defining features of the colleague experience at TD. Our compensation policies and practices have been designed to allow colleagues to progress through the salary range over time as they progress in their role. The base pay actually offered may vary based upon the candidate's skills and experience, job-related knowledge, geographic location, and other specific business and organizational needs.
As a candidate, you are encouraged to ask compensation related questions and have an open dialogue with your recruiter who can provide you more specific details for this role.

Job Description

We are seeking a skilled Information Security Specialist - Red Team Operator to join our offensive security program and help strengthen our defensive posture through realistic adversary emulation. This role focuses on executing end-to-end red team engagements that simulate real-world threat actors, validate security controls, and provide actionable insight to detection and response teams.
The ideal candidate brings hands‑on technical expertise, strong tradecraft, and the ability to operate safely and professionally in a highly governed enterprise environment.

Job Details - What You’ll Do
  • Plan and execute full‑scope red team engagements, including reconnaissance, initial access, lateral movement, privilege escalation, command-and-control, and objective completion
  • Emulate real‑world threat actors using established TTPs (e.g., MITRE ATT&CK)
  • Conduct phishing and social engineering campaigns within defined legal and ethical constraints
  • Develop and maintain custom tooling, payloads, and infrastructure to support operations
  • Collaborate closely with Blue Team, Purple Team, Threat Intelligence, and Incident Response partners
  • Produce clear, technically accurate engagement reports and executive‑ready summaries
  • Contribute to detection engineering by identifying gaps in controls, telemetry, and response processes
  • Support continuous improvement of red team methodologies, playbooks, and governance processes
  • Mentor junior operators and contribute to team knowledge sharing
Job Requirements - What You Need To Succeed
  • University degree
  • 7+ years of experience in offensive security, red teaming, penetration testing, or equivalent hands‑on security roles
  • Strong knowledge of Windows Active Directory environments, identity abuse, and enterprise authentication flows
  • Proven experience with common red team tooling (e.g., C2 frameworks, phishing platforms, custom payloads)
  • Solid understanding of network protocols, operating systems, and endpoint security controls
  • Ability to safely execute adversarial activities in regulated environments with strict scope and approval processes
  • Strong written and verbal communication skills, including report writing and technical walkthroughs
  • Demonstrated ability to work independently while collaborating effectively with cross‑functional teams
Other Skills & Assets
  • Familiarity with EDR, SIEM, and cloud security controls from an attacker’s perspective
  • Experience developing custom tooling in languages such as C#, Python, and PowerShell
  • Knowledge of red team infrastructure, domain management, and OPSEC best practices
  • Relevant certifications (e.g., CRTO, OSCP, GXPN, Red Team Ops‑focused certs)
  • Experience in financial services, large enterprises, or highly regulated environments
Who We Are

TD is one of the world's leading global financial institutions and is the fifth largest bank in North America by branches/stores. Every day, we strive to make every interaction, product, and experience remarkably human and refreshingly simple for over 27 million households and businesses in Canada, the United States and around the world. More than 95,000 TD colleagues bring their skills, talent, and creativity to foster deeper relationships, ensure disciplined execution, and build a simpler, faster banking experience. TD is deeply committed to being a leader in client experience, that is why we believe that all colleagues, no matter where they work, are client‑facing. Together, we are reimagining what banking can be for our clients, colleagues and communities.

Our Total Rewards Package
  • Total Rewards at TD includes a base salary, variable compensation, and several other key plans such as health and well‑being benefits, savings and retirement programs, paid time off, banking benefits and discounts, career development, and reward and recognition programs.
  • Learn more
Additional Information

We’re delighted that you’re considering building a career with TD. Through regular development conversations, training programs, and a competitive benefits plan, we’re committed to providing the support our colleagues need to thrive both at work and at home.
Please be advised that this job opportunity is subject to provincial regulation for employment purposes. It is imperative to acknowledge that each province or territory within the jurisdiction of Canada may have its own set of regulations, requirements.

Colleague Development

If you’re interested in a specific career path or are looking to build certain skills, we want to help you succeed. You’ll have regular career, development, and performance conversations with your manager, as well as access to an online learning platform and a variety of mentoring programs to help you unlock future opportunities.
If you’re passionate about helping clients and building deep, lasting relationships, TD offers diverse career paths where you can grow your expertise and make a meaningful impact.
We're committed to your success and foster a respectful workplace where diverse perspectives are valued, everyone has fair opportunities to grow, and you can unlock your full potential to achieve your career goals. Here at TD, we hire and develop the best.

Training & Onboarding

We will provide training and onboarding sessions to ensure that you’ve got everything you need to succeed in your new role.

Interview Process

We’ll reach out to candidates of interest to schedule an interview. We do our best to communicate outcomes to all applicants by email or phone call.

Accommodation

Your accessibility is important to us. Please let us know if you’d like accommodations (including accessible meeting rooms, captioning for virtual interviews, etc.) to help us remove barriers so that you can participate throughout the interview process.

Language Requirement (Quebec Only)

Sans Objet

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Specialist ( Attack Surface Reduction)
Information Security Specialist ( Attack Surface Reduction)

TD • Toronto

On-site
CAD 97,000 - 137,000
Senior Information Security Analyst (Vulnerability Governance)
Senior Information Security Analyst (Vulnerability Governance)

TD • Toronto

On-site
CAD 82,000 - 115,000
Global Security Analyst ll, IRC - Bilingual (French/English)
Global Security Analyst ll, IRC - Bilingual (French/English)

TD • Mississauga

On-site
CAD 60,000 - 84,000
Senior Manager, Information Security, CSIRT
Senior Manager, Information Security, CSIRT

TD • Toronto

On-site
CAD 136,000 - 163,000
Senior Information Security Analyst (Secure Code Review)
Senior Information Security Analyst (Secure Code Review)

TD • Toronto

On-site
CAD 82,000 - 115,000
Security Architect
Security Architect

Socket.dev • Toronto

On-site
CAD 126,000 - 148,000
Audit Manager II (ATH 930)
Audit Manager II (ATH 930)

TD Bank Group • Canada

On-site
CAD 96,000 - 137,000
Health and well-being benefits
Savings and retirement programs
Career development opportunities
Security Architect
Security Architect

TD • Toronto

On-site
CAD 126,000 - 148,000
Information Security Specialist (Crisis Management)
Information Security Specialist (Crisis Management)

TD • Mississauga

On-site
CAD 97,000 - 137,000
Senior Information Security Specialist, AI (B3617)
Senior Information Security Specialist, AI (B3617)

TD • Toronto

On-site
CAD 108,000 - 164,000
Competitive base salary
Health and well-being benefits
Career development programs